← All CVEs

CVE-2005-2878

high · 7.5

Format string vulnerability in search.c in the imap4d server in GNU Mailutils 0.6 allows remote authenticated users to execute arbitrary code via format string specifiers in the SEARCH command.

7.5
CVSS
14.6%
EPSS (exploit prob.)
96th
EPSS percentile
2005-09-13
Published

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

VendorProductAffected versions
gnumailutils0.6

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2005-2878